- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Has anyone else encountered this issue?
I have several 2200 appliances running R80.10 with Jumbo Hotfix Accumulator 189 and I cannot get them to sync with any NTP server. I have tried us.pool.ntp.org, pool.ntp.org, individual public NTP servers by IP.
I have a firewall policy rule allowing these security gateways to any destination for service "NTP" and any to these security gateways for service "NTP".
DNS resolves domain names fine on these gateways.
I have tried stopping and starting the NTP service. cpstop/cpstart and even a reload.
tcpdump -i eth1 dst port 123 shows packets to and from the chosen NTP server but I can't get a synchronization to happen:
tcpdump -i eth1 dst port 123
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on eth1, link-type EN10MB (Ethernet), capture size 96 bytes
10:41:31.052665 IP 96-80-255-145-static.hfc.comcastbusiness.net.ntp > quirk.faceprint.com.ntp: NTPv1, Client, length 48
10:41:31.090541 IP quirk.faceprint.com.ntp > 96-80-255-145-static.hfc.comcastbusiness.net.ntp: NTPv1, Server, length 48
10:42:36.051960 IP 96-80-255-145-static.hfc.comcastbusiness.net.ntp > quirk.faceprint.com.ntp: NTPv1, Client, length 48
10:42:36.096849 IP quirk.faceprint.com.ntp > 96-80-255-145-static.hfc.comcastbusiness.net.ntp: NTPv1, Server, length 48
10:43:40.052196 IP 96-80-255-145-static.hfc.comcastbusiness.net.ntp > quirk.faceprint.com.ntp: NTPv1, Client, length 48
10:43:40.092700 IP quirk.faceprint.com.ntp > 96-80-255-145-static.hfc.comcastbusiness.net.ntp: NTPv1, Server, length 48
10:44:46.051565 IP 96-80-255-145-static.hfc.comcastbusiness.net.ntp > quirk.faceprint.com.ntp: NTPv1, Client, length 48
ntpq peers shows the following:
[Expert@shelby-gw:0]# ntpq
ntpq> peers
remote refid st t when poll reach delay offset jitter
==============================================================================
quirk.faceprint .INIT. 16 u - 256 0 0.000 0.000 0.000
ntpq>
Hi PhoneBoy,
The clocks and dates on these devices are set manually to the correct time before I try to sync with NTP.
I receive the below message when I try ntpdate us.pool.ntp.org , and the security gateway doesn't sync.
[Expert@shelby-gw:0]# ntpdate us.pool.ntp.org
22 Apr 11:48:20 ntpdate[10306]: the NTP socket is in use, exiting
[Expert@shelby-gw:0]#
Disabling NTP first, then running the command, and re enabling NTP has made NTP start working on most of my 2200's, but there are a handful that still won't sync once NTP is enabled.
Hello,
Most of my 2200's running R80.10 are now synced with NTP after following the suggestions above, however there are still a couple that will not sync no matter what I do.
Does anyone have any other ideas?
and what you've got as an output when you put:
ntpq -p
please paste 😉
also if you could paste here cpinfo -y all ... that would help.
I have experienced the very same but on 3200 appliance last month on R80.10 take 15x but fixed that with new DA 🙂
Still believe it was coincidental though
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 66 | |
| 19 | |
| 13 | |
| 12 | |
| 11 | |
| 9 | |
| 9 | |
| 7 | |
| 7 | |
| 7 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY